API Connect V2018.1 through 2018.4.1.1 is impacted by access token leak. Authorization tokens in some URLs can result in the tokens being written to log files. IBM X-Force ID: 155626.
The product writes sensitive information to a log file.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/155626 | vdb entry vendor advisory |
http://www.securityfocus.com/bid/106961 | third party advisory vdb entry |
https://www.ibm.com/support/docview.wss?uid=ibm10869772 | patch vendor advisory |